ESZAntiBrute v1.1 Released – Now Protecting Password Reset Requests
By Ercan S. - 02/05/2025 - 0 comments
We’re pleased to announce the release of ESZAntiBrute version 1.1!
As one of the most effective brute force protection tools for OpenCart, ESZAntiBrute continues to evolve. With the new 1.1 update, we’re expanding the scope of protection beyond login pages — the extension now also limits repeated "Forgot Password" requests, a commonly overlooked attack vector.
What’s New in v1.1:
- Protection added for "Forgot Password" forms on both customer and admin login pages.
- Individual IP-based limits for password reset requests, just like login attempts.
- All protections remain independently configurable with flexible settings.
- Enhanced logging and IP blocking performance.
This update helps store owners prevent attackers from spamming the password reset functionality, which could otherwise lead to email flooding, targeted account discovery, or abuse of OpenCart's recovery system.
Why Update to v1.1?
If you're already using ESZAntiBrute, upgrading to v1.1 gives you a more complete security coverage — not just for login attempts but also for reset requests. And if you're new to the extension, there's never been a better time to strengthen your store's login-related defenses.
Update now and enjoy peace of mind knowing your store is protected on all fronts.
[View the ESZAntiBrute Extension ➔]
Tags: ESZAntiBrute